Vulnerabilities (CVE)

Filtered by vendor Wp-html-sitemap Project Subscribe
Filtered by product Wp-html-sitemap
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-2675 1 Wp-html-sitemap Project 1 Wp-html-sitemap 2023-12-10 5.8 MEDIUM 6.5 MEDIUM
Cross-site request forgery (CSRF) vulnerability in inc/AdminPage.php in the WP HTML Sitemap plugin 1.2 for WordPress allows remote attackers to hijack the authentication of administrators for requests that delete the sitemap via a request to the wp-html-sitemap page in wp-admin/options-general.php.